Post job

Cyber security analyst jobs in Salinas, CA

- 40 jobs
All
Cyber Security Analyst
Security Engineer
Cyber Security Engineer
Senior Security Engineer
Securities Analyst
Defense Analyst
Information Security Analyst
Information Assurance Analyst
Information Security Engineer
Information Assurance Engineer
  • Cyber Security Engineer

    Atomus

    Cyber security analyst job in San Jose, CA

    About the Company Atomus' mission is to provide world class cybersecurity for the world's most critical organizations. We build security compliance software delivered as managed services sold directly, with relevant professional services and support. Examples of our commercial customers include hypersonic aircraft companies, satellite and space mission systems companies, AI and software companies, among many other companies serving primarily the aerospace and defense industry. At Atomus we are hardworking, we move fast, and we put our customers first. About the Role As a Cybersecurity Engineer will work closely with customers to help them implement and fully leverage Atomus' cybersecurity products, maintain compliance with NIST 800-171 and CMMC cybersecurity standards, and solve technical challenges. Our customers depend on Atomus to manage and secure their Windows, MacOS, Ubuntu, iOS, Android devices, and Firewalls while ensuring compliance. We aim to provide the best possible support when they have questions. Our team's main goal is to simplify our customers' lives, for compliance and security. You will serve as the voice of the customer by sharing their feedback and insights with our product team and reporting any issues to our software engineers. We take pride in delivering amazing experiences for our customers. Responsibilities Manage and guide new customers through the onboarding process, ensuring proper setup, configuration, and alignment with their security programs and establishing baseline compliance requirements of NIST 800-171 and CMMC while performing technical tasks/project management required for onboardings. Serve as the first point of contact for technical inquiries, providing debugging, troubleshooting, and solutions for technical IT/security issues related to the Atomus platform. Work closely with internal teams (sales, product, engineering) along with partners/vendors for customer requirements to communicate customer feedback and advocate for customer needs in product development and rolling out 3rd party products. Assist customers in managing and maintaining NIST 800-171 and CMMC compliance requirements, ensuring IT documentation is updated and maintained. Required Skills Experience in a customer-facing technical role, IT administrator, solutions engineer, Technical Customer Success, or TAM role preferably in cybersecurity or compliance. Strong experience with cybersecurity frameworks and technologies (e.g., NIST, CMMC, firewalls, routers, encryption tools). Intermediate networking knowledge of WAN and LAN connectivity, routers, firewalls, switches, security, etc. Experience with Microsoft Intune, Active Directory, Windows, MacOS and ABM, as well as mobile platforms like Android and iOS. Advanced understanding of Microsoft products (Exchange, SharePoint, Windows, Windows Server, Active Directory, etc.). Familiarity with command-line tools (e.g., PowerShell, Terminal) for troubleshooting and deployment. Strong troubleshooting skills, particularly related to network security, software issues, and IT environments. Excellent verbal and written communication skills; ability to explain complex topics to both technical and non-technical audiences. Applicants must have strong emotional intelligence to intuit and match customer sentiment for effective communication. Preferred Skills Prior experience with NIST 800-171, CMMC, or other compliance standards. Ability to manage multiple customer accounts and onboarding projects simultaneously. Familiarity with CRM platforms (HubSpot), and compliance documentation tools while managing SLAs which include customer satisfaction, initial response, and issue resolution times.
    $102k-145k yearly est. 3d ago
  • Cybersecurity risk security analyst

    Sigmaways Inc.

    Cyber security analyst job in San Jose, CA

    We are seeking a Cybersecurity Risk Analyst to support managing and mitigating security risks across processes, technologies, and cloud environments. The ideal candidate will combine technical expertise, business acumen, and cybersecurity experience to advise partners, assess risks, and drive improvements in secure operations. This role requires hands on experience with Kusto Query Language (KQL), cloud security, and risk assessment, as well as the ability to communicate effectively with stakeholders at all levels. Must be local to San Francisco or Los Angeles (LA) or Salt Lake City (SLC). Responsibilities: Support risk strategies by identifying and mitigating security risks in bank systems and processes. Apply and interpret security policies, provide guidance and input on policy enhancements. Advise business and technical partners on security controls, procedures, and best practices. Assess cloud and on-prem environments to identify risks and recommend control improvements. Conduct security control assessments, document findings, and develop actionable remediation plans. Evaluate third-party vendors to determine shared security responsibilities and associated risks. Communicate security risks and mitigation strategies effectively to technical teams and executives. Collaborate across teams to drive secure operations and deliver results in a fast-paced environment. Qualifications: Bachelor's degree in Cybersecurity, Information Security, Computer Science, or related technical discipline (or equivalent experience). 3+ years of experience in cybersecurity, information security, or technology risk management. Proficiency in Kusto Query Language (KQL) for data analysis, log correlation, and threat detection. In-depth understanding of security frameworks such as NIST, ISO 27001, or FedRAMP. Demonstrated experience assessing and improving security posture across Cloud (Azure, AWS) and on-premises environments. Proven ability to conduct security control assessments, identify risk exposures, and develop actionable remediation plans. Skilled at translating technical security concepts into clear, business-relevant insights for stakeholders and executives. Excellent communication, collaboration, and interpersonal skills, with a focus on building trusted partnerships across technical and business teams. Strong organizational and analytical skills, with the ability to manage multiple initiatives in a fast-paced, results-driven environment.
    $89k-133k yearly est. 4d ago
  • Access Assurance Analyst - USDS

    Tiktok 4.4company rating

    Cyber security analyst job in San Jose, CA

    Team Intro The Access Assurance vertical within USDS Data Identity and Access Management (DIAM) Team is responsible for designing and maintaining an access management program with a mission to enforce the principle of least privilege. We strive to establish secure and compliant processes around provisioning, deprovisioning and governance of access to USDS data and infrastructure proactively identifying and reducing risks. Job Overview: As an Access Assurance Analyst, you will be part of the team responsible for Access Assurance within TikTok USDS. You will be responsible for supporting the team along with a team of cross-functional cyber, privacy, engineering, and data protection analysts to define, implement, manage, and measure controls to protect data in accordance with USDS policies and standards relevant to geographical regulations, contractual commitments, and confidentiality requirements. The Access Assurance Analyst will play a pivotal role in operationalization of access management programs in USDS. In order to enhance collaboration and cross-functional partnerships, among other things, at this time, our organization follows a hybrid work schedule that requires employees to work in the office 3 days a week, or as directed by their manager/department. We regularly review our hybrid work model, and the specific requirements may change at any time. Responsibilities: * Design access management program that addresses data residency and fine-grained role-based access requirements and controls as necessitated by business need and regulations * Assist in the development and implementation of Access governance frameworks, policies, and procedures. * Build and review technical and functional requirements for in-house or external technologies to support access management and assurance needs, including applying appropriate security measures * Operationalize access management workflows to improve efficiency * Support periodic reviews of access to USDS data and systems * Drive remediation of non-compliant access in a timely fashion * Implement and enforce mechanisms to proactively monitor, respond and report on inappropriate data access events * Work with other information security teams to classify and categorize data based on sensitivity and compliance requirements * Support interactions with Risk and Compliance to understand control requirements and provide information to support findings for non-compliance with internal security policies * Responsible for designing and reporting key metrics and visualizations for weekly, monthly and bimonthly cadences across multiple audiences * Participate in security reviews to ensure compliance with access governance policies. * Foster a principle of least privilege for access management * Collaborate with key stakeholders to ensure alignment of access governance initiatives with organizational goals.Minimum Qualifications: * Bachelor's degree in a related field (e.g., Information Management, Computer Science, Business Analytics, Cyber Security) * 5+ years of experience in identity and access management or access governance & 5+ years of experience working with IAM tools and strong knowledge of Access management concepts (RBAC, PAM, Access Reviews, SOD, LCM, provisioning and deprovisioning of Access) * Experience in designing/deploying Access management solutions, Experience analyzing large data sets across multiple database types (e.g., MySQL, Hive, Redis etc) leveraging SQL etc., Experience with industry frameworks, standards and regulations (e.g. ISO, NIST) * Ability to write scripts, develop automations, configure tools, work with APIs and databases while being Proficient in at least one software programming language (Python,Java,Ruby etc) along with Familiarity with Cloud-based technology deployments * Demonstrate ability to quickly assimilate to new knowledge and remain current on new developments in cybersecurity capabilities and industry knowledge * Strong analytical and problem-solving skills with the Ability to communicate technical concepts to a broad range of technical and non-technical staff * Comfortable working in a fast-paced, dynamic environment Preferred Qualifications: * Strong understanding of technology environments and various databases * Experience working with technology partners to validate data-related problems * Experience working with Microservices architecture * Experience in automating access management workflows to reduce operational overhead * Experience with risk and controls frameworks including (ISO 27001, NIST CSF, NIST RMF, FAIR, COBIT, NIST RMF, ISO 31000 etc.)
    $76k-131k yearly est. 49d ago
  • JavaScriptCore Security Engineer

    Apple Inc. 4.8company rating

    Cyber security analyst job in Cupertino, CA

    In this role, you have the opportunity to help secure the JavaScriptCore virtual machine. The JavaScriptCore team at Apple is looking for system programmers with experience in security, especially in programming languages, compilers, and virtual machines. You will be working to deliver a more secure web for all Apple products both proactively, by ensuring new features are implemented securely, and reactively, by responding to and addressing JavaScriptCore's unique security challenges. The work is challenging, and the impact and reach are large. Join us! The JavaScriptCore team in WebKit is responsible for the JavaScriptCore engine, and our mission is to make JavaScript and WebAssembly execution both fast and secure. JavaScriptCore is complex, with many subsystems: the compilation pipeline, the language runtime, the garbage collector and memory allocators, and the API for native apps. These subsystems run untrusted, third-party code, and all of them must do so in a memory safe way. In this role, you will work across all areas of the engine, focusing on improving security and stability. You will drive new innovations in the security architecture of the codebase. You will fix security issues and respond to fuzzing. You will also ensure that security processes in JavaScriptCore are updated to current best practices and set the project up for a secure future. Hands-on experience with VMs with just-in-time compilers (e.g. JavaScript engines and JVMs) Experience with web browsers Experience with memory allocators and garbage collectors Experience with fuzzing, security architecture, and memory safety Knowledge of JavaScript and WebAssembly BS in computer science or equivalent Experience programming in modern C++ Excellent debugging, critical thinking, and communication skills Experience developing privacy and security-sensitive software Experience with compilers, parsers, and interpreters Experience with assembly-level programming
    $155k-202k yearly est. 45d ago
  • Cyber Defense Analyst

    Integral Federal

    Cyber security analyst job in Monterey, CA

    The Cyber Defense Analyst is responsible for using data collected from various cyber defense tools (e.g., IDS alerts, firewalls, network traffic logs) to analyze events within their environments for the Defense Language Institute Foreign Language Center (DLIFLC) Academic Network Labor Contract to administer, maintain, secure, and accredit the DLIFLC Academic Network which provides the IT environment for 100% of the DLIFLC teaching and instructing for all students, staff, faculty, and guests in a learning environment at the unclassified level. Responsibilities · The primary goal is to mitigate threats and enhance the organization's security posture. Data Analysis: Utilize data from cyber defense tools to analyze and interpret security events. · Threat Mitigation: Identify and respond to potential threats to mitigate risks. · Incident Response: Participate in incident response activities to address security breaches. · Continuous Monitoring: Maintain ongoing surveillance of network traffic and security alerts. · Collaboration: Work with all teams to implement effective defense strategies and improve overall security measures. Qualifications Required: · AA/AS from an accredited college or university or substitute with 3+ years experience with any one of the following IAT Level II (CySA+, Security+, CND, or SSCP) Certification and CE/OS Certification. · Relevant Skills: Microsoft Defender for Endpoint, ACAS, Palo Alto Networks, GitLab, BurpSuite, MacOS, iPadOS, Windows, and RedHat Enterprise Linux. · Secret Clearance Salary Range: $115,000 - $122,000 The above salary range represents a general guideline. Integral Federal considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions. Depending on the position, employees may be eligible for overtime, shift differential, and/or discretionary bonuses in addition to base pay. Company Overview Integral partners with federal defense, intelligence, and civilian leaders to tackle their most important challenges and deliver positive outcomes. Since our founding in 1998, we have helped clients leverage existing and emerging technologies to transform their enterprises, empower growth, drive innovation, and build sustainable success. The forward-leaning solutions we deliver are tailored to each mission with a focus on keeping our nation safe and secure. Integral is headquartered in McLean, VA and serves clients throughout the country. We offer a comprehensive total rewards package including paid parental leave and immediate vesting in our 401(k). Give us a try and become part of a curated group of professionals at Integral Federal! Our package also includes: · Medical, Dental & Vision Insurance · Flexible Spending Accounts · Short-Term and Long-Term Disability Insurance · Life Insurance · Paid Time Off & Holidays · Earned Bonuses & Awards · Professional Training Reimbursement · Paid Parking · Employee Assistance Program Equal Opportunity Employer/Protected Veteran/Disability
    $115k-122k yearly Auto-Apply 60d+ ago
  • INFORMATION SECURITY ANALYST

    San Jose Evergreen Community College District 3.6company rating

    Cyber security analyst job in San Jose, CA

    Opportunity Type CLASSIFIED EMPLOYMENT OPPORTUNITY Position Title INFORMATION SECURITY ANALYST Posting Number S2549 Close/First Review Date 11/16/2025 Department ITSS (Information Technology Support Services) Work Location District Office Position Status Full Time Salary Range $141,330 - $172,437 Annual Salary (Range 150: Classified Salary Schedule Fiscal Year 2025-2026). Starting placement is generally at Step 1. Benefits Summary In addition to the salary, this position qualifies for the choice of one of the District's excellent Health Benefits and Welfare plans, which the premium cost is 100% paid by the District for the employee and their eligible dependents, and one health plan costing an estimated $60,000 for the District for fiscal year 2025-2026. We offer two medical plans (Anthem Blue Cross [PPO] and Kaiser Permanente (HMO]); dental (Delta Dental PPO); vision (VSP Choice); life insurance for the employee (The Hartford); life insurance for eligible dependents (The Hartford); a long term disability/income protection plan (The Hartford); and an employee assistance plan (Anthem EAP). In addition, the District contributes an additional 26.81% of the employee's salary towards an eligible employee's pension (CalPERS). Employees may also elect to participate in optional plans including purchasing additional life insurance for themselves and their eligible dependent(s); enroll in a medical, transportation, and/or dependent care Flexible Spending Account(s) (with the $4 monthly administrative fee paid by the District); and set pre-taxed dollars aside to supplement their pension in a 403b (tax shelter annuity) and/or a 457 (deferred compensation) plan(s). Classified employees also earn 10 to 22 days per year of vacation (based on years of service), and up to 12 sick leave days (pro-rated for less than full-time positions). There are currently 20 paid holidays. Position Description POSITION SUMMARY The Information Security Analyst reports to Executive Director of ITSS (Information Technology Support Services) at the District Office. The work schedule is 12 months per year; 40 hours per week; Monday - Friday; 8:00 a.m. - 5:00 p.m. This position is represented by CSEA (California School Employees Association), Chapter 363. POSITION PURPOSE Reporting to Executive Director, ITSS or an assigned administrator, the Information Security Analyst performs complex work related to the District's information security program including testing, analysis and evaluation of the integrity and confidentiality of enterprise systems, network, assets and communication technology throughout the District. The position monitors security systems and conducts periodic risk assessments to identify, troubleshoot, diagnose, resolve and report security problems and breaches; assists in coordinating and conducting investigations involving District technology resources, and assists with security awareness training. DISTINGUISHING CHARACTERISTICS This position focuses on threat and vulnerability management with exposure and support on all aspects of the cybersecurity practice. Incumbent in this position should have advanced knowledge on risk identification, protection and compliance, threat detection, incident response plan development and annual review, and recovery services to achieve business resilience. KEY DUTIES AND RESPONSIBILITIES 1. Analyze, evaluate and implement security applications, policies, standards and procedures intended to prevent the unauthorized use, disclosure, modification, loss or destruction of data; work with the campus community and other staff to ensure the integrity and security of the information technology infrastructure. 2. Lead the development, testing and implementation of information security products and control techniques in all locations throughout the District. 3. Work with campus and district technology teams to ensure the security of all applications and assets. 4. Monitor and review security systems and logs. Identify, troubleshoot, diagnose, resolve, document and report security problems and incidents; help coordinate and conduct investigations of suspected breaches; respond to emergency information security situations. 5. Collaborate with application programming team and other IT staff to ensure production applications meet established security policies and standards. 6. Assist with training and education on information security and privacy awareness topics for District administrators, faculty and staff; assist in the development of appropriate security-incident notification procedures for District management. 7. Work with vendors to conduct vulnerability assessments to identify existing or potential electronic data and assets compromises and their sources; participate in investigative matters with appropriate law enforcement agencies. 8. Perform audits and periodic inspections of District information systems to ensure security measures are functioning and effectively utilized and recommend appropriate remedial measures to eliminate or mitigate future system compromises. 9. Review, evaluate, and recommend software products related to IT systems security, such as virus scanning and repair, encryption, firewalls, internet filtering and monitoring, intrusion detection, etc. 10. Monitor and maintain the District's security event information system (SEIM) and data loss prevention software. 11. Manage security systems and policies including but not limited to servers, firewalls, email security, and Microsoft 365 environment. 12. Recommend and implement security policies, protocols, practices and lead in creation of security training and guidance to staff. 13. Assist in the secure management and maintenance of the District's network authentication systems for wired and wireless network access. 14. Review security practices and controls of third-party service providers that handle District sensitive data, and review security controls and features of third-party software systems. 15. Ensure that maintenance, configuration, repair and patching of systems occurs on a scheduled and timely basis utilizing best practices in change management and consistent with policies and procedures. 16. Keep current with latest emerging security issues and threats through list servers, blogs, newsletters, conferences, user groups, and networking and collaboration with peers in other institutions. 17. Perform other duties reasonably related to the job classification. EMPLOYMENT STANDARD Knowledge of: 1. Compliance and industry cybersecurity standards frameworks such as NIST 800 and ISO standards. 2. Emerging technologies and the possible impact on existing information systems, instructional processes and business operations. 3. Incident response best practices and software license compliance laws. 4. Troubleshooting tools for computing hardware, servers and network equipment including but not limited to switches, routers, and firewalls. 5. Enterprise resource planning systems, Microsoft 365 and Active Directory and Azure Active Directory. 6. Principles of program design, coding, testing and implementation. 7. Advanced knowledge of desktop and server operating systems including Windows and Linux. 8. Disaster recovery and backup including business continuity planning. 9. Principles of training, support, and services to end-users. 10. General research techniques and data driven analytics. 11. Modern office administrative practices and use of tools including computers, websites and other applications related to this job. Skills and Ability to: 1. Apply current NIST and ISO standards to current operations. 2. Respond to incidents and events in a timely manner. 3. Prepare clear and concise system documentation and reports. 4. Prioritize assigned tasks and projects. 5. Communicate complicated technical issues and the risks they pose to stakeholders and management. 6. Establish and maintain effective and cooperative working relationships with others. 7. Analyze situations accurately and adopt effective course of action. 8. Coordinate, develop, and implement projects. 9. Work with attention to detail and independently with minimum supervision. Required Qualifications EDUCATION AND EXPERIENCE 1. A Bachelor's degree from an accredited institution with major course work in computer information systems, computer science, business administration, or related field. 2. Two years of experience performing information security duties, which may include implementing, overseeing, and/or managing information security technologies, process, or programs, including identification, protection, detection, response, and recovery activities. Certification: 1. Professional security or privacy certification, such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or other similar credentials. District's Diversity * Demonstrated sensitivity, knowledge and understanding of the diverse academic, socioeconomic, gender identity, sexual orientation, cultural, disability, and ethnic background of groups historically underrepresented, and groups who may have experienced discrimination. * Success integrating diversity as appropriate into the major duties outlined in the job description and in the duties listed in the District's hiring policy; or demonstrated equivalent transferable skills to do so. Desired Qualifications 1. Bilingual abilities, desirable. Foreign Degree For positions that require a degree or coursework: Degree(s) must have been awarded by a college or university accredited by an accrediting body recognized by the U.S. Council on Post-Secondary Accreditation and/or the U.S. Department of Education. All degrees and credits earned outside of the United States must have a U.S. evaluation (course by course) of the transcripts and must be submitted with the application. Degrees earned outside of the U.S. without a U.S. credential evaluation attached, will not be considered. Working Environment Physical Demands: 1. Must sit for long periods of time, use hands and fingers to operate an electronic keyboard, reach with hands and arms, and speak clearly and distinctly to ask questions and provide information, hear and understand voices over telephone and in person. 2. The physical demands described here are representative of those that must be met by an individual to successfully perform the essential functions of this job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions. About San Jose/Evergreen Community College District The District is represented by dedicated and talented employees who are passionate about providing our student population with the best educational experience possible. The District recognizes that cultural diversity in the academic environment promotes academic excellence; fosters cultural, racial and human understanding; provides positive roles models for all students, and creates an inclusive and supportive educational and work environment for its employees, students, and the community it serves. As of Spring 2024, with enrollment of approximately 15,655 students per semester, and an extremely diverse student population (Hispanic/Latino 45.20%, Black/African-American 3.45%, Asian/Pacific Islander 31.70%, American Indian/Native American 0.36%, White/Caucasian 12.76%) attaining educational goals reflecting 56% - Transfer to a 4-Year College/ University, the District's emphasis on student success makes it a recognized educational leader in the State. The District encourages a diverse pool of applicants to serve as colleagues to an existing diverse classified staff consisting of 43.9% Latinx, 25.3% Asian/Pacific Islander, 4.2% Black/African American, 0.3% American Indian/Native American, 17.9% White/Caucasian, and as well as encouraging applications from all qualified, outstanding applicants. Important Information EQUAL OPPORTUNITY EMPLOYER STATEMENT: San José-Evergreen Community College District is an Equal Opportunity Employer committed to nondiscrimination on the basis of ethnic group identification, race, color, language, accent, immigration status, ancestry, national origin, age, gender, gender identity, religion, sexual orientation, transgender, marital status, veteran status, medical condition, and physical or mental disability consistent with applicable federal and state laws. CONTACT: Employment Services, Human Resources, SJECCD 40 S. Market Street, San Jose, CA 95113 Phone: ************** Email: ******************************* Employment Website: ****************************** District Website: ************** APPLICATION PROCEDURES: Interested applicants MUST SUBMIT ONLINE ALL of the following materials by the First Review Date/Closing Date as listed on the job announcement. Applications received after the First Review Date will only be forwarded to the hiring committee at their request. 1. A completed online San José-Evergreen Community College District APPLICATION. 2. A COVER LETTER (Stating how you feel you meet the qualifications as outline in the job announcement). 3. A current RESUME/CURRICULUM VITAE 4. TRANSCRIPT - (If Required) If a degree is listed as a requirement, transcripts (Not Diplomas) MUST INCLUDE confer or award date of stated degree. Unofficial transcripts will be accepted; however if the position is offered, official transcripts will be required prior to employment. If the transcripts or degrees are from outside of the United States, an official certification of equivalency to U.S. degrees by a certified U.S. credential review service (course by course of the transcripts) MUST also be submitted. (See below for a list of suggested services that provide foreign degree equivalency evaluation to U.S. degrees). Note: Some positions may require additional documents and/or certificates, in addition to the items listed above. Please refer to the job announcement. OTHER APPLICANT INFORMATION: 1. Only complete application materials will be considered. No exceptions. 2. Letters of Recommendation are NOT required and will not be forwarded to the hiring committee. 3. Upon hire the successful candidate must provide the required documents of identity and authorization to work and attest he/she is authorized to work in the United States. 4. Application materials become the property of the District and will not be returned or duplicated. 5. Travel expenses to attend the interview are the responsibility of the candidate. 6. Meeting the minimum qualifications does NOT assure an interview. 7. The District may re-advertise, delay, choose not to fill the position, or choose to fill more than one position. Suggested services that provide foreign degree equivalency evaluation to U.S. degrees: Academic Credentials Evaluation Institute, Inc. Website: *************************** Education Records Evaluation Services Website: ************ International Education Research Foundation Website: ******************** World Education Services Website: ***********
    $141.3k-172.4k yearly Easy Apply 60d+ ago
  • Cyber Security Engineer V

    ACL Digital

    Cyber security analyst job in San Jose, CA

    Security Compliance Engineer - AWF The Global Information Security team is responsible for driving security compliance activities for eBay Payments, Marketplaces, Corporate IT, and adjacent businesses. The Security Compliance Analyst will play a critical role working directly with business leaders to understand security compliance issues, lead technical compliance assessments and mitigation efforts, and develop effective remediation programs and actions to resolve compliance issues. Key Responsibilities Ability to provide pragmatic guidance to business leaders and stakeholders that effectively balances security compliance risks with the needs of the business. Contribute to the growing information security and compliance program at eBay, including performing security compliance audits, identifying problems and areas for process improvement Work closely with internal business units and relevant departments to assess compliance and where necessary, provide support in remediating non-compliant areas Have a deep understanding of security controls, underlying business processes, concepts, practices, and tools used to promote adoption of applicable security standards Advise management on specific security requirements, implementations and the impact on business processes, applications and systems as needed Generate periodic reports to teams and senior stakeholders and make practical recommendations to improve security practices Research and extract insights from industry standards and trends, apply them to the scope of internal controls and improve security practices and compliance in the company Facilitate organizational adoption of new security controls, standards and best practices through thoughtful change management strategies Document security/technology control requirements and develop methods to meet new cyber security and compliance needs and requirements as needed. Coordinate compliance and audit activities with other groups. Requirements 7+ years of security and compliance experience. Experience in eCommerce, Payments, or Technology space a plus Experience with/understanding of PCI DSS, SOC 2, ISO 27001, NIST and/or other industry standard control frameworks. Experience with managing third party audits including working with internal teams to collect evidence to be used in an audit. Strong technical understanding of security compliance requirements and solutions, as well as threats and challenges impacting the protection of information across an extended global enterprise. Possess general knowledge of networking, encryption, authentication, payment infrastructure, cloud infrastructure and application security Capable of flexing between high level strategic concepts & frameworks to tactical operational implementation Self-starter with a bias towards action and can thrive in a fast-paced and ambiguous environment Exceptional communication skills including clear and concise writing, an engaging presentation style, and group facilitation Strong teamwork skills with a demonstrated ability to collaborate across teams and roles
    $102k-145k yearly est. 60d+ ago
  • Information Assurance Security Specialist V (

    Corporate & Technical Recruiters, Inc.

    Cyber security analyst job in Seaside, CA

    This company is excited to offer career opportunities within our fast growing organization. Our mission - "Helping people throughout life's journey" and the vision to be the trusted partner for improving the quality of life in the communities we serve. They are a "Top 25" non-profit provider under the AbilityOne Program. This company serves to help people with disabilities find meaningful employment in multiple business service lines in 14 states, including internationally. The IT teams maintains government and commercial contracts and has been honored with numerous awards for service excellence and supporting employee morale. The IT team is a primary federal contractor for DMDC for DoD, where our focus is on identity management and software development credentialing, and personnel security and benefits. They offer competitive compensation and benefits package. Position Summary: The Information Assurance (IA) Specialist V will provide information security support for information systems and IT operations. Job Qualifications: Degree Requirement: Bachelor's Degree in Information Technology or related field. May substitute equivalent combination of education and experience. Fifteen (15) or more years of experience in the field or in a related area. Experience with DoD's RMF, DIACAP, NIST Certification & Accreditation. Must possess Security + or CISSP certification. Advanced understanding of software installation and configuration. Working knowledge of networks and network devices (switches, routers, firewalls, etc.). Applicants selected will be subject to a government security investigation and must meet eligibility requirements. U. S. Citizenship required per government contract. Travel Requirements: Some travel may be required, up to 10% of the time.
    $90k-127k yearly est. 60d+ ago
  • Cyber Security Engineer

    Talentburst 4.0company rating

    Cyber security analyst job in San Jose, CA

    ** 9 time INC 500/5000, 9 time BBJ "Pacesetter ", 5 time SIA-fastest growing** ___________________________________________________________ Kashif Meraj | TalentBurst, Inc. Boston | San Francisco | Miami | Milwaukee | Toronto | New Delhi | Bangalore Work: ************** 575 Market Street, Suite 3025 | San Francisco, CA 94105 | ******************* Certified Minority Business Enterprise (MBE) Job Description Job Title: IT Security Engineer Location: San Jose, CA 95110 Duration: 6 Months+ Responsibilities: • Work with Client's Identity and Access Management team to administer and implement appropriate security controls and workflows. • Work with various internal employees to help train and educate on good security practices and specifics about end-user security tools. • Work with a team of Security Engineers to handle incoming requests, respond to issues, troubleshoot reported problems, and identify solutions. • Work closely with the teams that provisions, customizes, monitors, manages and upgrades our enterprise password vault solution. • Communicate with customers to address their security requirements and provide guidance. Requirements: • Experience with and understanding of enterprise password vault configurations and automations. Specific CyberArk experience is preferred Additional Information Please reach me for further query or drop your updated resume at ***********************************
    $99k-136k yearly est. Easy Apply 1h ago
  • Security Engineer, Application Security

    Figure 4.5company rating

    Cyber security analyst job in San Jose, CA

    Figure is an AI Robotics company developing a general purpose humanoid. Our humanoid robot, Figure 02, is designed for commercial tasks and the home. We are based in San Jose, CA and require 5 days/week in-office collaboration. It's time to build. We are looking for a Security Engineer to join the Security & Privacy team at Figure, focusing on security of the robot as well as associated backend services. We are looking for excellent security engineers who have experience in breaking and building complex software systems, with experience in AI and embedded systems. Responsibilities * Conduct security assessments of applications, embedded systems, back-end services, and business integrations, as well as build tooling for a secure development lifecycle * Design technical solutions to mitigate security weaknesses on the robot and our service stack. Work with teams across the company to implement them. * Build frameworks and systems to prevent classes of vulnerabilities * Hunt for vulnerabilities and insecure coding patterns on our product stack (backend services and robot internal systems) * Be a champion for security and user privacy Requirements * Experience in several of the following application security domains: penetration testing, vulnerability research, security assessment, secure coding practices, security architecture & design, hardware security * Strong software engineering (not scripting or automation) skills in C/C++, Rust, Golang, Python or similar * Experience with securing embedded systems, including secure boot, secure identity, OTA, or others * Solid foundation in web security, mobile security, or cryptography * Ability to collaborate with internal and external stakeholders whilst prioritizing tasks and work independently under minimal supervision. * BS in Computer Science, Engineering, Information Systems, or equivalent years of experience in a related technical field * 3+ years of experience in the field of application security or related security role * Passion for learning and helping others * Excellent verbal and written communication skills, with high attention to detail The US base salary range for this full-time position is between $150,000 - $350,000 annually. The pay offered for this position may vary based on several individual factors, including job-related knowledge, skills, and experience. The total compensation package may also include additional components/benefits depending on the specific role. This information will be shared if an employment offer is extended.
    $150k-350k yearly Auto-Apply 39d ago
  • AMD-XILINX: DLP Enterprise Information Security Engineer

    Elevated Resources

    Cyber security analyst job in San Jose, CA

    The Enterprise Information Security Engineer will be responsible for identifying and defining requirements and engineering solutions to solve the existing threats and security issues of a global organization. This role will focus heavily on data protection, leading advancements in data loss prevention, automating processes and changing how AMD protects data going forward.
    $111k-157k yearly est. 60d+ ago
  • Senior Security Engineer

    Adobe Systems Incorporated 4.8company rating

    Cyber security analyst job in San Jose, CA

    Our Company Changing the world through digital experiences is what Adobe's all about. We give everyone-from emerging artists to global brands-everything they need to design and deliver exceptional digital experiences! We're passionate about empowering people to create beautiful and powerful images, videos, and apps, and transform how companies interact with customers across every screen. We're on a mission to hire the very best and are committed to creating exceptional employee experiences where everyone is respected and has access to equal opportunity. We realize that new ideas can come from everywhere in the organization, and we know the next big idea could be yours! Position summary: The Senior Security Engineer position will be part of the Enterprise Security organization consisting of IAM professionals across several technologies. This specific position will have a specialized role in directory services and SaaS applications! It will focus on large implementations of Entra ID with integrations with other directories, IDPs, applications, and automated workflows. We give technical direction, administer tools, and provide support for various security technologies. We participate in driving Enterprise Security projects that use our cloud directory services for various internal and external Adobe services. We work with other specialists, architects, security teams, and software engineer teams across Adobe and collectively provide services, guidance, and strategies that protect services and data as well as adhere to various global government regulations. You will work with business customers, management teams, infrastructure teams, development teams, project managers, and other security teams to help implement the vision, structure, standards, and plan solutions that support the future architecture. At Adobe, you will be immersed in an exceptional work environment that is recognized throughout the world on Best Companies lists! You will also be surrounded by colleagues who are committed to helping each other grow through our Check-In approach where ongoing feedback flows freely. If you're looking to make an impact, Adobe is the place for you. Discover what our employees are saying about their career experiences on the Adobe Life blog and explore the meaningful benefits we offer. Adobe is an equal opportunity employer. We welcome and encourage diversity in the workplace regardless of race, gender, religion, age, sexual orientation, gender identity, disability or veteran status. Primary Responsibilities May Include, but Are Not Limited To: * Managing deep and complex directory architectures and services span directories, IDPs, and federated environments. * Providing guidance and architecting solutions for directory service strategies across a variety of internal customers at Adobe. * We help test, implement, and support secure services used by end-users, devices, and application workflows to all of Adobe. * We engineer secure identity solutions for on-premises and cloud environments. * We are a team of Security Engineers that handle incoming requests, respond to issues, solve reported problems, and develop solutions. * We meet with teams to get business requirements, understand workflows, and devise solutions. * We help assess SaaS implementations for identity integrations and general security. * We generate useful metrics to help make decisions, identify issues, and manage our sevices. Requirements: * Possess a Bachelor's or advanced degree in MIS, Computer Science, Cybersecurity, or Engineering OR 10+ years in IT or Cybersecurity * Comfortable working on and leading different projects with many teams at one time * In-depth understanding of Windows, Mac and UNIX/Linux based systems, permissions, and interoperability. * Strong knowledge of machine to machine and application to machine connections using MFA, certificates, tokens, and other methods. * Strong understanding of the identity lifecycle, secure by design, least privileged and zero trust. * An in-depth knowledge and understanding of managing and securing cloud directories (e.g. Entra ID/AWS/Okta) and integrating with traditional directories (e.g. Active Directory/389DS/ LDAP based directories). * Proficient in written and verbal communications, skilled at working alongside differing viewpoints to accomplish shared objectives. * Able to work independently and as a team member. * Capable of conveying technical concepts to diverse audiences including non-technical users, architects, and senior leadership. * Professional written, verbal, and presentation communication skills to engage with senior leadership. * A deep understanding of Cloud Directories, especially Entra ID, and how to secure it, use conditional access policies, and apply/create automation. * Ability to teach and mentor others while fostering a collaborative environment. * Can model leadership behavior and help to grow other's leadership behavior. Preferred: * Understanding of Desktop operating systems including Windows, Linux, and Mac * Experience or knowledge of Public Key Infrastructure * Strong abilities in programming/scripting languages for automating repeatable tasks like Python, PowerShell, etc. * Experience and/or Knowledge of dashboarding and log correlation engines such as Grafana, Telegraph, Splunk, etc. * Experience with SaaS Security Posture Management technologies. * Experience with developing PowerBI dashboards. The Person Should: * Have strong social skills, ability to "win people over" and be a great teammate. * Be able to communicate, influence and mentor across business and executive leadership as well as partners while being able to explain the benefits for their teams. * Be neutral toward technology, vendor and product choices; more interested in results than in personal preferences. * Have the ability to think creatively and to solve complex tasks and problems with minimal direction. Our compensation reflects the cost of labor across several U.S. geographic markets, and we pay differently based on those defined markets. The U.S. pay range for this position is $168,200 -- $310,100 annually. Pay within this range varies by work location and may also depend on job-related knowledge, skills, and experience. Your recruiter can share more about the specific salary range for the job location during the hiring process. In California, the pay range for this position is $214,100 - $310,100 In Washington, the pay range for this position is $194,000 - $281,000 At Adobe, for sales roles starting salaries are expressed as total target compensation (TTC = base + commission), and short-term incentives are in the form of sales commission plans. Non-sales roles starting salaries are expressed as base salary and short-term incentives are in the form of the Annual Incentive Plan (AIP). In addition, certain roles may be eligible for long-term incentives in the form of a new hire equity award. State-Specific Notices: California: Fair Chance Ordinances Adobe will consider qualified applicants with arrest or conviction records for employment in accordance with state and local laws and "fair chance" ordinances. Colorado: Application Window Notice If this role is open to hiring in Colorado (as listed on the job posting), the application window will remain open until at least the date and time stated above in Pacific Time, in compliance with Colorado pay transparency regulations. If this role does not have Colorado listed as a hiring location, no specific application window applies, and the posting may close at any time based on hiring needs. Massachusetts: Massachusetts Legal Notice It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability. Adobe is proud to be an Equal Employment Opportunity employer. We do not discriminate based on gender, race or color, ethnicity or national origin, age, disability, religion, sexual orientation, gender identity or expression, veteran status, or any other applicable characteristics protected by law. Learn more. Adobe aims to make Adobe.com accessible to any and all users. If you have a disability or special need that requires accommodation to navigate our website or complete the application process, email accommodations@adobe.com or call **************.
    $214.1k-310.1k yearly 49d ago
  • Database Security Engineer

    Jobsbridge

    Cyber security analyst job in Cupertino, CA

    5-7 years - As a core DBA in a highly active production environment 3+ years - In project management role 3-5 years - Unix and SQL scripting skills 2-3 years - Working knowledge on a highly active production environment (multiple databases) Role and privilege management in RDBMS Experience working on Security/Compliance projects Participate in documentation, creation of Checklists and followup validations Work on ticketing system and followup routinely to ensure completeness Bi-Annual and Quarterly review activities for Security,Compliance Qualifications 5-7 years - As a core DBA in a highly active production environment 3+ years - In project management role 3-5 years - Unix and SQL scripting skills 2-3 years - Working knowledge on a highly active production environment (multiple databases) Additional Information Multiple Openings
    $114k-163k yearly est. 60d+ ago
  • Senior Security Engineer

    F5, Inc. 4.6company rating

    Cyber security analyst job in San Jose, CA

    At F5, we strive to bring a better digital world to life. Our teams empower organizations across the globe to create, secure, and run applications that enhance how we experience our evolving digital world. We are passionate about cybersecurity, from protecting consumers from fraud to enabling companies to focus on innovation. Everything we do centers around people. That means we obsess over how to make the lives of our customers, and their customers, better. And it means we prioritize a diverse F5 community where each individual can thrive. Join a team using leading edge security technology and processes to protect the F5 enterprise and product environments. The Sr. Security Engineer position will develop and implement strategic processes and build technical solutions to enable our information security program and continuously improve our security posture amidst the industry's evolving technology landscape. This role will place an emphasis on securing our enterprise and product-based network environments. Candidates should have strong familiarity with enterprise firewall solutions and look to challenge the status quo it relates to these deployments. Bringing a heavy dose of automation and security management to these environments. We are looking for a well-qualified candidate that possesses the above attributes and resides in the greater Seattle area or San Jose to enable close team collaboration in F5 buildings. Primary Responsibilities * Identify organizational risks to confidentiality, integrity, and availability, and determine appropriate mitigations. * Leverage native Azure, GCP, and AWS cloud services to automate and improve existing security and control activities. * Develop or implement open-source/third-party tools to assist in detection, prevention and analysis of security threats * Perform technical security assessments against F5aaS product and enterprise cloud hosted, virtual, and on-premise systems including static and dynamic analysis, and threat modeling. * Review and test changes to services, applications, and networks for potential security impacts. * Manage penetration and segmentation testing of F5 applications and networks. * Review changes to and ongoing operations of enterpise environments and supporting systems for security and compliance impacts. * Assist in detection and response efforts as a product line subject matter expert. * Propose new controls to Security Architecture and GRC. * Build and implement new security controls, processes and tools. * Implement zero-trust and IAM security patterns with cloud agnostic tooling * Collaborate with Architecture, Site Reliability Engineering and Operations teams to develop and implement technical solutions and security standards. * Configure industry standard security testing/scanning tools (network scanning, code scanning, posture management). * Advise enterprise stakeholders on security best practices and secure design principles. * Implement, design, develop, administer, and manage enterprise security tooling. Knowledge, Skills and Abilities * Experience working with high-availability enterprise production environments * Ability to script in multiples languages (Go, Rust, Python, Ruby, etc.) and experience building scripts for process improvements and automation * Baseline competency in administration of Microsoft Azure Cloud, Amazon Web Services (AWS), Google Cloud Platform (GCP) or equivalent public cloud infrastructure. * Technical knowledge and extensive hands-on experience with security and networking architecture, networking protocols, network security design, wireless security, intrusion prevention/detection, and firewall architecture. * Experience automating security testing and reporting outputs * Knowledge or familiarity with technological stack (Big-IP, Azure, AWS, GCP, CentOS, Linux, Kubernetes, Docker Hashicorp Vault, Palo Alto, Cisco, Qualys). * Experience assessing and implementing technical security controls * Exposure to DevOps tooling, CI/CD pipelines, container orchestration, and infrastructure as code approach (e.g. Puppet, Chef, Ansible, Terraform, Jenkins, CircleCI, Artifactory, Git) * Strong written and verbal communication skills. * Experience with network and application vulnerability and penetration testing tools * Willingness to innovate and learn new technologies * Excellent interpersonal and relationship skills with a collaborative mindset * Strong written and verbal communication skills. * Strong self-directed work habits, exhibiting initiative, drive, creativity, maturity, self-assurance and professionalism. * Agile, tactful, and proactive attitude that can manage prioritization and know when to escalate. Qualifications * B.S. or M.S. in Computer Science, Engineering, or related field, or equivalent experience * 5 years of progressive responsibility in a security organization * 2-6 years of relevant security engineering or network security experience The Job Description is intended to be a general representation of the responsibilities and requirements of the job. However, the description may not be all-inclusive, and responsibilities and requirements are subject to change. The annual base pay for this position is: $140,800.00 - $211,200.00 F5 maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, geographic locations, and market conditions, as well as to reflect F5's differing products, industries, and lines of business. The pay range referenced is as of the time of the job posting and is subject to change. You may also be offered incentive compensation, bonus, restricted stock units, and benefits. More details about F5's benefits can be found at the following link: ******************************************** F5 reserves the right to change or terminate any benefit plan without notice. Please note that F5 only contacts candidates through F5 email address (ending with @f5.com) or auto email notification from Workday (ending with f5.com or @myworkday.com). Equal Employment Opportunity It is the policy of F5 to provide equal employment opportunities to all employees and employment applicants without regard to unlawful considerations of race, religion, color, national origin, sex, sexual orientation, gender identity or expression, age, sensory, physical, or mental disability, marital status, veteran or military status, genetic information, or any other classification protected by applicable local, state, or federal laws. This policy applies to all aspects of employment, including, but not limited to, hiring, job assignment, compensation, promotion, benefits, training, discipline, and termination. F5 offers a variety of reasonable accommodations for candidates. Requesting an accommodation is completely voluntary. F5 will assess the need for accommodations in the application process separately from those that may be needed to perform the job. Request by contacting accommodations@f5.com.
    $140.8k-211.2k yearly Auto-Apply 7d ago
  • Principal Cyber Security Engineer

    A10 Networks 4.8company rating

    Cyber security analyst job in San Jose, CA

    A Principal Cyber Security Engineer is a seasoned, hands-on role responsible for monitoring an organization's networks, systems, applications, external industrial events, and trends for security threats. This role involves analyzing and developing tools in python for security data, identifying Vulnerabilities, and responding to security incidents. Cyber Security Analysts work closely with other security professionals to maintain the organization's security posture. Principal Cyber Security Engineer has the following responsibilities: * Monitor networks, systems, and applications for security threats * Develop security tools programming in python to protect applications against security threats * Perform Threat Hunting using industry and A10 specific datasets to * identify threats to the company and our customers * Incident Response for threats against the company and our customers * Monitor industry trends in various areas of cybersecurity * Provide cybersecurity direction through insightful writeups and presentations * Conduct periodic penetration tests and vulnerability assessments Principal Cyber Security Engineer requires the following skills: * Master's degree in Computer Science or Information Technology, or a related field with 5+ years in Cyber Security with 10+ years overall experience * 1+ years python programming experience * Knowledge of security principles and best practices * Understanding of Threat Hunting methods * Basic ELK stack expertise * Operational familiarity with an array of host, application, cloud and network cybersecurity technologies * Threat Intelligence and other Open source intelligence * Basic binary reverse engineering using tools like Ghidra or IDA * IP networking troubleshooting and design * Knowledge of programming languages such as Python and Go * Operational understanding of penetration testing tools * Proven track record of identifying and remediating cybersecurity threats * Analytical and problem-solving skills * Excellent communication and interpersonal skills Principal Cyber Security Analyst may use the following tools and software: * Security information and event management (SIEM) systems * Intrusion detection/prevention systems (IDS/IPS) * Firewalls and other Network security appliances * Vulnerability scanners and penetration testing tools * Malware analysis tools * Forensic tools * Programming languages, such as Python and Go Preferred Certifications: CompTIA Security+, CEH, or GIAC A10 Networks is an equal opportunity employer and a VEVRAA federal subcontractor. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability status, protected veteran status, or any other characteristic protected by law. A10 also complies with all applicable state and local laws governing nondiscrimination in employment. #LI-AN1 Compensation: up to $220K USD
    $220k yearly Auto-Apply 58d ago
  • Senior Security Analytics Engineer, Global E-Commerce Security Platform

    Tiktok 4.4company rating

    Cyber security analyst job in San Jose, CA

    About the team: Global E-commerce is a content E-commerce business with international short video product as the carrier. It is committed to becoming the first choice for users to discover and purchase good products with affordable prices. Global E-commerce business team hopes to provide users with more tailored and efficient consumption experience, enabling merchants to receive reliable platform services in different scenarios such as live E-commerce, short video content E-commerce, so as to make more affordable and high-quality products sell easily and a better life within reach. The Security Platform team is responsible for safeguarding the platform's security and creating a safe, trustworthy shopping and business environment for Global E-commerce: allowing consumers to shop with confidence, sellers to operate with peace of mind, and influencers to focus on the enjoyment of bringing goods. In order to enhance collaboration and cross-functional partnerships, among other things, at this time, our organization follows a work schedule that requires employees to work in the office 5 days a week, or as directed by their manager/department. We regularly review our work model, and the specific requirements may change at any time. Responsibilities: * Responsible for relevant security incident investigation, data analysis, risk labeling, model building, and developing data-driven security solutions to detect security threats and breaches, with the ability to implement and execute the solutions. * Monitor and analyze emerging cyber threats and risks related to user accounts takeover, network traffic crawling, data leakage prevention, suspicious user behavior, etc. * Responsible for emergency response to security incidents, and identify the root causes of issues and provide security solutions to mitigate the impact of cyber attacks within specific SLAs. * Collaborate deeply with various business teams, product teams, and more technical and functional teams to design and deliver technical solutions addressing complex business security challenges. * Perform real-time data analysis and trending of security log data from various systems, apply advanced data analytics, statistical learning, and data mining techniques to strengthen security capabilities.Minimum Qualifications: * Bachelor's degree or above in Computer Science, Information Security, Data Science, Business Analytics, or a related discipline. * 2+ years of experience in data analytics, with proficiency in SQL, Python, and relevant analytical tools/languages, be able to detect cyber threats and risks by data-driven approaches. * Excellent capabilities to investigate, identify, analyze hidden issues from real business risks and security incidents, and provide technical solutions addressing business risk challenges. * Strong business judgment and ability to work independently in a fast-paced, ambiguous environment, strong cross-team communication skills to achieve results. Preferred Qualifications: * Experienced in security risk mitigation, such as account security, data security, traffic security, or content safety strategy development. * Experienced in E-commerce and retail related business fields. * Strong communication skills to bridge business and technical teams, with the ability to drive projects efficiently from risk detection through solution implementation; Proven resilience and stability.
    $153k-220k yearly est. 60d+ ago
  • AI Software and Security Engineer

    Apple Inc. 4.8company rating

    Cyber security analyst job in Cupertino, CA

    Come change the world with us! This job is about designing and building the next generation of internal AI-based software development tools for Apple, with a focus on ease of use and security. The tools we make accelerate the pace of development for tens of thousands of engineers who ship to the billions of Apple devices in the world. Our team cares deeply about providing Apple's customers with the highest standard in security and privacy on our products. We build large-scale systems that automate workflows for vulnerability discovery in Apple software. Here are examples of the kinds of projects you will be working on with us: - Create an investigation platform a teams of malware or security analysts - Build a developer-facing platform for automatically analyzing bugs and code reviews using AI - Implement security analysis fuzzing infrastructure with 100k parallel nodes - Keep business-critical systems running with maximal automation and minimal human intervention Experience developing new projects, understanding users' needs, and designing against that Experience designing, building, and running complex distributed systems Excellent skills in Python, Java, or Go Experience with operating services you developed, including deployment automation and rollback strategies Creative, critical and independent thinking capabilities and troubleshooting skills Effective communication of complex technical concepts Track record of shipping customer-facing services or products Passionate about engineering perfection, performance, and quality Enthusiasm for new technologies and growth Requirement for on-call rotation, which includes weekends Bachelor's degree in Computer Science or 3 year's of equivalent practical experience 5 years of experience with Python, Go, Swift, or C/C++
    $155k-202k yearly est. 46d ago
  • Cyber Security Engineer III

    ACL Digital

    Cyber security analyst job in San Jose, CA

    eBay is seeking a CSIRT Engineer to join our highly visible Cyber Security Incident Response Team that provides Security Operations Center (SOC) support, cyber analysis, scripting and automation, and a 24x7x365 support staff. This specific position requires the ability to work Swing and/or Graveyard shifts with rotations into Day shift. Working within eBay's Computer Security Incident Response Team (CSIRT) you will have the opportunity to build innovative solutions to identify and mitigate information-security threats. You will work collaboratively to creatively solve complex security problems in a heterogeneous environment. With your contributions, we're building the best security incident response team in the industry. Your skills, vision, tenacity, and passion will help us defend and respond daily to keep eBay's critical information assets away from threats and hackers. Candidates must have extensive experience working with various security methodologies and processes, advanced knowledge of TCP/IP protocols, extensive experience providing analysis and trending of security log data from a large number of heterogeneous security devices. Must demonstrate expert knowledge in one (1) or more of the following areas: Incident Response, Digital Forensics, Monitoring and Detection, Cyber Intelligence Analysis Core Job Functions Include: Investigations - Investigating computer and information security incidents to determine extent of compromise to information and automated information systems Escalations - Responding to escalated events from security tooling to develop/execute security controls, Defense/countermeasures to prevent internal or external attacks or attempts to infiltrate company email, data, e-commerce and web-based systems. Research - Researching attempted or successful efforts to compromise systems security and designs countermeasures. Education - maintaining proficiency in tools, techniques, countermeasures, and trends in computer network vulnerabilities, data hiding and network security and encryption. Communications - Provides information and updates to shift leads & leadership, creates pass-downs for next shift, work closely with supporting teams, provide feedback for new security policy and standards, engage with other teams and adjacencies through email and conference calls. Digital Forensics - As it relates to information systems, performs HR investigations and legal holds in a forensically sound manner. Consults with HR and legal subject matter experts to adhere to local country law Coverage - Must be willing to perform shift work, weekends, and holidays as well as participate in a rotating shift consisting of four (4) 10 hour shifts with four days on, three (3) days off and possible rotations across Day, Swing, and Graveyard shifts as needed. To be successful in this position, you should be proficient with: Incident Response - Getting people to do the right thing in the middle of an investigation. Offensive Techniques - Penetration testing, IOCs, and exploits at all layers of the stack. Logs - you should be comfortable with a SEIM to be able to gather and analyze logs to recreate incidents and hunt for threats. System Forensics - Basic understanding of image acquisition techniques, memory forensics, and the like. Networking Fundamentals - TCP/IP Protocols (HTTP, DNS, FTP, DHCP, ARP, etc.), and Wireshark/TCPDump. Scripting - Should be familiar with scripting in at least one of the following: python, perl or a similar language. Risk Analysis - Taking a vulnerability in a particular environment and understanding the practical associated risk. Qualifications: Bachelor's degree in Computer Science, Engineering, Information Technology, Cybersecurity, or a related field. Minimum three (3) years of professional experience in incident detection and response, malware analysis, or digital forensics. Must have at least one (1) of the following certifications: SANS GIAC: GCED, GCIA, GPEN, GWAPT, GSNA, GPPA, GAWN, GWEB, GNFA, GREM, GXPN, GMON, GCIH ISC2: CCFP, CCSP, CISSP Cisco: CCNA, CCNP CERT: CSIH EC Council: CEH, ENSA, CNDA, ECSS, ECSP, ECES, CHFI, LPT, ECSA, or ECIH Offensive Security: OSCP, OSCE, OSWP and OSEE Digital Forensics: EnCE, CB, MiCFE, ACE, GCFA, GCFE In addition, a minimum of one (1) year of specialized experience in one or more of the following areas: Security Assessment or Offensive Security Application Security Security Operations Center/Security Incident Response Cyber intelligence Analysis Will this candidate interface with IT and business teams? If so, which internal/external groups? Operation role Incident response and security operations team - service requests, alerts, data loss events, malware technical investigates to tirage the events Not a senior role- analyst that makes initial triage of the events wider not deeper knowledge of the space Security background- know the basics of information security-does not need to be a SOC analyst looking for diverse skillsets Shift based job not operational - 3 site structure west coast, EMEA, and east coast can apply this resource to either site hence Preference on West coast PST 3 month training and onboarding period- will take an exam towards the end of the onboarding Required Skills (top 3 to 5/ non-negotiables): What you like to see on resumes? (nice to have) 1 . * Solid sort of security domain background - experience education, certifications Security analyst, Malware analyst, Security engineering/Admin, threat research knowledge etc. Does this individual have the tech evidence to discuss how they used it in their previous job - more on the analyst 1 . Coding knowledge 2 . * Excellent communication skills as this worker will be working cross functionally with tech and non-IT teams within the space 2 . Admin knowledge 3 . * SQL, SPL Query and Languages and Coding 3 . Pen testing knowledge 4 . * Can work on a variety of tools as this team uses a lot of home-built tools 4 . * These people would have more of a possible to extend/convert to FTE 5 5 . . Disqualifiers or Dislikes on Resumes: No investigation experience and cannot discuss how they conducted the investigations Taking and Admin or dev resume and inject it into their resume/experience - need to have the direct experience and able to explain that within the interview Education Requirement: Bachelor's degree not needed they are really looking for a person with the hard skills Minimum 2-3 years Security experience as long as they have the hard skills If they are just now coming into Security then 5-7 years Required Testing: Security analyst, Malware analyst, Security engineering/Admin, threat research knowledge etc. Software Skills Required: SQL, SPL, Splunk, etc. Required Certifications: Should have 1 or more in the JD if they are in this space Preferred companies/industries: Open to all Candidate Value Proposition: If worker does well, they have a high chance of extension and conversion Difficult Aspects of Role: Night and weekend shifts, rotational shifts. May be difficult if they have a family so be transparent on the schedule up front, more discussions will be had in the interview with the manager Team Environment How many people are on your team? Junior, Mid or Senior Level? Lean team 8-9 members Will be working with Core engineers that works in those time zones Allow rotations and flexibility 3 months to ramp up give or take Morning daily stand up - will only apply for the region they are hired into Shift attendance is paramount but can be flexible but is a monitoring role
    $102k-145k yearly est. 60d+ ago
  • Senior Security Engineer

    Adobe 4.8company rating

    Cyber security analyst job in San Jose, CA

    Our Company Changing the world through digital experiences is what Adobe's all about. We give everyone-from emerging artists to global brands-everything they need to design and deliver exceptional digital experiences! We're passionate about empowering people to create beautiful and powerful images, videos, and apps, and transform how companies interact with customers across every screen. We're on a mission to hire the very best and are committed to creating exceptional employee experiences where everyone is respected and has access to equal opportunity. We realize that new ideas can come from everywhere in the organization, and we know the next big idea could be yours! Position summary: The Senior Security Engineer position will be part of the Enterprise Security organization consisting of IAM professionals across several technologies. This specific position will have a specialized role in directory services and SaaS applications! It will focus on large implementations of Entra ID with integrations with other directories, IDPs, applications, and automated workflows. We give technical direction, administer tools, and provide support for various security technologies. We participate in driving Enterprise Security projects that use our cloud directory services for various internal and external Adobe services. We work with other specialists, architects, security teams, and software engineer teams across Adobe and collectively provide services, guidance, and strategies that protect services and data as well as adhere to various global government regulations. You will work with business customers, management teams, infrastructure teams, development teams, project managers, and other security teams to help implement the vision, structure, standards, and plan solutions that support the future architecture. At Adobe, you will be immersed in an exceptional work environment that is recognized throughout the world on Best Companies lists! You will also be surrounded by colleagues who are committed to helping each other grow through our Check-In approach where ongoing feedback flows freely. If you're looking to make an impact, Adobe is the place for you. Discover what our employees are saying about their career experiences on the Adobe Life blog and explore the meaningful benefits we offer. Adobe is an equal opportunity employer. We welcome and encourage diversity in the workplace regardless of race, gender, religion, age, sexual orientation, gender identity, disability or veteran status. Primary Responsibilities May Include, but Are Not Limited To: Managing deep and complex directory architectures and services span directories, IDPs, and federated environments. Providing guidance and architecting solutions for directory service strategies across a variety of internal customers at Adobe. We help test, implement, and support secure services used by end-users, devices, and application workflows to all of Adobe. We engineer secure identity solutions for on-premises and cloud environments. We are a team of Security Engineers that handle incoming requests, respond to issues, solve reported problems, and develop solutions. We meet with teams to get business requirements, understand workflows, and devise solutions. We help assess SaaS implementations for identity integrations and general security. We generate useful metrics to help make decisions, identify issues, and manage our sevices. Requirements: Possess a Bachelor's or advanced degree in MIS, Computer Science, Cybersecurity, or Engineering OR 10+ years in IT or Cybersecurity Comfortable working on and leading different projects with many teams at one time In-depth understanding of Windows, Mac and UNIX/Linux based systems, permissions, and interoperability. Strong knowledge of machine to machine and application to machine connections using MFA, certificates, tokens, and other methods. Strong understanding of the identity lifecycle, secure by design, least privileged and zero trust. An in-depth knowledge and understanding of managing and securing cloud directories (e.g. Entra ID/AWS/Okta) and integrating with traditional directories (e.g. Active Directory/389DS/ LDAP based directories). Proficient in written and verbal communications, skilled at working alongside differing viewpoints to accomplish shared objectives. Able to work independently and as a team member. Capable of conveying technical concepts to diverse audiences including non-technical users, architects, and senior leadership. Professional written, verbal, and presentation communication skills to engage with senior leadership. A deep understanding of Cloud Directories, especially Entra ID, and how to secure it, use conditional access policies, and apply/create automation. Ability to teach and mentor others while fostering a collaborative environment. Can model leadership behavior and help to grow other's leadership behavior. Preferred: Understanding of Desktop operating systems including Windows, Linux, and Mac Experience or knowledge of Public Key Infrastructure Strong abilities in programming/scripting languages for automating repeatable tasks like Python, PowerShell, etc. Experience and/or Knowledge of dashboarding and log correlation engines such as Grafana, Telegraph, Splunk, etc. Experience with SaaS Security Posture Management technologies. Experience with developing PowerBI dashboards. The Person Should: Have strong social skills, ability to “win people over” and be a great teammate. Be able to communicate, influence and mentor across business and executive leadership as well as partners while being able to explain the benefits for their teams. Be neutral toward technology, vendor and product choices; more interested in results than in personal preferences. Have the ability to think creatively and to solve complex tasks and problems with minimal direction. Our compensation reflects the cost of labor across several U.S. geographic markets, and we pay differently based on those defined markets. The U.S. pay range for this position is $168,200 -- $310,100 annually. Pay within this range varies by work location and may also depend on job-related knowledge, skills, and experience. Your recruiter can share more about the specific salary range for the job location during the hiring process. In California, the pay range for this position is $214,100 - $310,100 In Washington, the pay range for this position is $194,000 - $281,000 At Adobe, for sales roles starting salaries are expressed as total target compensation (TTC = base + commission), and short-term incentives are in the form of sales commission plans. Non-sales roles starting salaries are expressed as base salary and short-term incentives are in the form of the Annual Incentive Plan (AIP). In addition, certain roles may be eligible for long-term incentives in the form of a new hire equity award. State-Specific Notices: California: Fair Chance Ordinances Adobe will consider qualified applicants with arrest or conviction records for employment in accordance with state and local laws and “fair chance” ordinances. Colorado: Application Window Notice If this role is open to hiring in Colorado (as listed on the job posting), the application window will remain open until at least the date and time stated above in Pacific Time, in compliance with Colorado pay transparency regulations. If this role does not have Colorado listed as a hiring location, no specific application window applies, and the posting may close at any time based on hiring needs. Massachusetts: Massachusetts Legal Notice It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability. Adobe is proud to be an Equal Employment Opportunity employer. We do not discriminate based on gender, race or color, ethnicity or national origin, age, disability, religion, sexual orientation, gender identity or expression, veteran status, or any other applicable characteristics protected by law. Learn more. Adobe aims to make Adobe.com accessible to any and all users. If you have a disability or special need that requires accommodation to navigate our website or complete the application process, email accommodations@adobe.com or call **************.
    $214.1k-310.1k yearly Auto-Apply 44d ago
  • Security Engineer

    F5, Inc. 4.6company rating

    Cyber security analyst job in San Jose, CA

    At F5, we strive to bring a better digital world to life. Our teams empower organizations across the globe to create, secure, and run applications that enhance how we experience our evolving digital world. We are passionate about cybersecurity, from protecting consumers from fraud to enabling companies to focus on innovation. Everything we do centers around people. That means we obsess over how to make the lives of our customers, and their customers, better. And it means we prioritize a diverse F5 community where each individual can thrive. Join a team using leading edge security technology and processes to protect the F5 enterprise and product environment. The Security Engineer position will execute strategic processes and implement technical solutions to enable our information security program and address day-to-day security challenges amidst the industry's evolving technology landscape. Primary Responsibilities * Build and implement new security controls, processes and tools. * Identify organizational risks to confidentiality, integrity, and availability, and determine appropriate mitigations. * Leverage native Azure, GCP, and AWS cloud services to automate and improve existing security and control activities. * Develop or implement open-source/third-party tools to assist in detection, prevention and analysis of security threats. * Perform technical security assessments against product and enterprise cloud hosted, virtual, and on-premise systems including static and dynamic analysis, and threat modeling. * Review and test changes to services, applications, and networks for potential security impacts. * Collaborate with Architecture, Site Reliability Engineering and Operations teams to develop and implement technical solutions and security standards. * Stay abreast on security best practices and secure design principles. * Review changes to and ongoing operations of enterpise environments and supporting systems for security and compliance impacts. * Assist in incident detection and response efforts. * Implement zero-trust patterns with cloud agnostic tools to support enterprise business units. * Implement, design, develop, administer, and manage enterprise security tooling. Knowledge, Skills and Abilities * Experience working with high-availability enterprise production environments * Familiarity with scripting languages (e.g., (Go, Python, Ruby, Rust,etc.). and building scripts for process improvements * Experience automating security testing and reporting outputs * Technical knowledge and hands-on experience with security and networking security, basic networking protocols, cloud security, network security design, intrusion prevention/detection, and firewall architecture * Experience assessing and implementing technical security controls * Willingness to innovate and learn new technologies * Excellent interpersonal and relationship skills with a collaborative mindset * Knowledge or familiarity with technological stack (Big-IP, Azure, AWS, GCP, CentOS, Hashicorp Vault, Palo Alto, Qualys). * Experience with network and application vulnerability and penetration testing tools. * Baseline competency in administration of Microsoft Azure Cloud, Amazon Web Services (AWS), Google Cloud Platform (GCP) or equivalent public cloud infrastructure. * Exposure to DevOps tooling, CI/CD pipelines, container orchestration, and infrastructure as code approach (e.g. Puppet, Chef, Ansible, Terraform, Jenkins, CircleCI, Artifactory, Git) * Strong written and verbal cowimmunication skills. * Strong self-directed work habits, exhibiting initiative, drive, creativity, maturity, self-assurance and professionalism. * Agile, tactful, and proactive attitude that can manage prioritization and know when to escalate. Qualifications * B.S. or M.S. in Computer Science, Engineering, or related field, or equivalent experience. * 3+ years of relevant security and networking experience LI-KT1 The Job Description is intended to be a general representation of the responsibilities and requirements of the job. However, the description may not be all-inclusive, and responsibilities and requirements are subject to change. The annual base pay for this position is: $120,000.00 - $180,000.00 F5 maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, geographic locations, and market conditions, as well as to reflect F5's differing products, industries, and lines of business. The pay range referenced is as of the time of the job posting and is subject to change. You may also be offered incentive compensation, bonus, restricted stock units, and benefits. More details about F5's benefits can be found at the following link: ******************************************** F5 reserves the right to change or terminate any benefit plan without notice. Please note that F5 only contacts candidates through F5 email address (ending with @f5.com) or auto email notification from Workday (ending with f5.com or @myworkday.com). Equal Employment Opportunity It is the policy of F5 to provide equal employment opportunities to all employees and employment applicants without regard to unlawful considerations of race, religion, color, national origin, sex, sexual orientation, gender identity or expression, age, sensory, physical, or mental disability, marital status, veteran or military status, genetic information, or any other classification protected by applicable local, state, or federal laws. This policy applies to all aspects of employment, including, but not limited to, hiring, job assignment, compensation, promotion, benefits, training, discipline, and termination. F5 offers a variety of reasonable accommodations for candidates. Requesting an accommodation is completely voluntary. F5 will assess the need for accommodations in the application process separately from those that may be needed to perform the job. Request by contacting accommodations@f5.com.
    $120k-180k yearly Auto-Apply 35d ago

Learn more about cyber security analyst jobs

How much does a cyber security analyst earn in Salinas, CA?

The average cyber security analyst in Salinas, CA earns between $75,000 and $146,000 annually. This compares to the national average cyber security analyst range of $66,000 to $117,000.

Average cyber security analyst salary in Salinas, CA

$105,000
Job type you want
Full Time
Part Time
Internship
Temporary